Posts

Microsoft has just released an emergency out-of-band (OOB) update

Image
 Microsoft has just released an emergency out-of-band (OOB) update for Windows 11 to fix critical issues introduced in the October 2025 Patch Tuesday update (KB5066835). Here's what you need to know:  What Went Wrong • Broken Localhost Connections: The update disrupted HTTP/2 connections to , affecting developers and apps relying on local servers like IIS and ASP.NET. • WinRE Failure: USB keyboards and mice stopped working in the Windows Recovery Environment (WinRE), leaving users unable to troubleshoot or recover their systems. • Peripheral Issues: Logitech devices and File Explorer previews were also affected.  Emergency Fix: KB5070773 Microsoft has issued KB5070773 to resolve these problems: • Restores USB functionality in WinRE for Windows 11 versions 24H2 and 25H2. • Fixes the localhost regression caused by HTTP.sys mishandling HTTP/2 handshakes.  How to Get the Update • Automatic Installation: The update is rolling out via Windows Update and will in...

Best Alternatives to Windows 10

Image
  Don't throw out that old computer just yet, give that older model system a make over while keeping up with security and free application cross overs.  ðŸ§Đ Best for Windows Users (Easy Transition) These look and feel most like Windows. Zorin OS ðŸ–Ĩ️ Interface similar to Windows 10/11. 🧰 Preinstalled software (LibreOffice, browser, media player). 💊 Very stable (based on Ubuntu). ðŸŽŊ Great for general users, offices, and older hardware. Linux Mint (Cinnamon Edition) 🊟 UI is almost identical to Windows. 🧠 Simple learning curve, light on resources. 🔒 Secure and regularly updated. ðŸ’Ą Perfect for replacing Windows 10 on older PCs. Ubuntu (with GNOME or Mate Desktop) 🌍 One of the most popular and supported distros. 🛠️ Tons of community help and documentation. ðŸ“Ķ Easy software installation via “Ubuntu Software Center.” ⚡ For Performance and Old Computers Great if you want something faster than Windows 10. Lubuntu ðŸŠķ Lightweigh...

WSUS CVE-2025-59287 Mitigation

Image
CVE-2025-59287 is a critical Remote Code Execution (RCE) vulnerability affecting Windows Server Update Services (WSUS) . Here's a detailed breakdown of what it is, how it works, and what you should do about it: Overview Disclosed: October 2025 Patch Tuesday CVSS Score: 9.8 (Critical) Affected Systems: Windows Server 2012 through 2025 (including Server Core installations) Exploitability: Microsoft rates it as “Exploitation More Likely” Technical Details The vulnerability arises from unsafe deserialization of untrusted data in WSUS. Specifically, the GetCookie() endpoint in WSUS processes encrypted AuthorizationCookie objects without proper type validation. The deserialization occurs via .NET BinaryFormatter , which is known to be insecure when handling untrusted input. Attackers can send a crafted SOAP request to WSUS over port 8530 , containing a malicious AuthorizationCookie . The cookie is decrypted using a hardcoded AES key and then deserialized, allow...

How To Hide Files in a Image

Image
Method 1: Using Command Line (e.g., on Windows or Linux) You can use the copy command (Windows) or cat (Linux/macOS) to combine files: On Windows (Command Prompt): Shell copy /b image.jpg + secret.zip output.jpg Show more lines image.jpg: the cover image secret.zip: the file you want to hide output.jpg: the resulting image with the hidden file You can still open output.jpg as a normal image, but if you open it with a zip tool (like WinRAR or 7-Zip), you'll see the hidden file. On Linux/macOS (Terminal): Shell cat image.jpg secret.zip > output.jpg   How to Extract the Hidden File To retrieve the hidden file: Open output.jpg with a zip tool (e.g., 7-Zip, WinRAR). You’ll see the hidden secret.zip contents inside.    Notes & Considerations This method doesn’t encrypt the hidden file it just hides it. Anyone who knows the trick can extract it. For more secure hiding, you can encrypt th...

The Fall Out from the Last Patch Tuesday (October) Continues USB

Image
   What's the Problem? USB keyboards and mice stop working in WinRE : After installing the update, USB input devices become unresponsive when booting into recovery mode. This means you can't navigate recovery options if your system fails to boot. Normal operation is unaffected : USB devices still work fine within the standard Windows 11 environment. Affected versions : Windows 11 24H2, 25H2, and Windows Server 2025. Workarounds and Cautions Avoid entering recovery mode unless absolutely necessary. Legacy PS/2 devices still work in WinRE, if available. Microsoft is working on a fix , but recovery patches KB5067039 and KB5067019 do not yet resolve the issue. Broader USB Issues Post-Update Some users also report: USB ports failing to recognize devices after updates earlier this year. Power flowing to ports but no data connectivity (e.g., camera lights up but doesn’t transmit data). Attempts to roll back drivers or reset BIOS have had mixed results.  Trouble...

Google is Not Phasing out Chrome, but it is Changing

Image
  Google is not phasing out Chrome itself, but it is making major changes to some of its core features and initiatives:  What's actually being phased out? • Privacy Sandbox: Google has officially retired its Privacy Sandbox project, which aimed to replace third-party cookies with more privacy-preserving alternatives. This includes the shutdown of several APIs like Topics, Attribution Reporting, and Protected Audience. • Third-party cookie phase-out: Google has abandoned its long-standing plan to eliminate third-party cookies in Chrome. This reversal means tracking cookies will remain, despite years of development and regulatory scrutiny. • Chrome Apps: Support for Chrome Apps (not extensions) is being phased out gradually and will end completely by October 2028. This affects enterprise and education users who rely on legacy Chrome apps.  What’s staying? • Chrome browser itself is not going anywhere. It still dominates with over 70% of the global browser market. • ...

Active Directory Synchronization Bug and Fix

Image
Active Directory Synchronization Bug – September 2025 Affected Systems : Windows Server 2025 machines with KB5065426 or later updates installed. Issue : Applications using the DirSync control (e.g., Microsoft Entra Connect Sync ) fail to fully synchronize large AD security groups (groups with over 10,000 members). Impact : Incomplete synchronization of large groups Disruption in identity and access management Potential issues in hybrid cloud environments relying on accurate group membership Mitigation : Microsoft has released a temporary registry workaround A permanent fix is expected in a future Windows update Here is the PowerShell script that: Checks if KB5065426 or later is installed Applies the registry workaround to mitigate the DirSync bug affecting large AD security groups What the Script Does: Searches for installed hotfixes matching KB5065xxx . If found, it sets the registry key: HKLM\SYSTEM\CurrentControlSet\Services\NTDS\Parameters\UseLegacyGroupE...